Privacy, Security & Compliance

Our Commitment to Responsible Data Governance

Responsible data practices are fundamental to how ContractsInfo develops and delivers government contract and procurement intelligence. We design our operational processes to support recognised international privacy regulations, information security practices and responsible data governance principles for enterprise organisations that depend on trusted public sector information.

Get in Touch
GDPR
SOC 2
CCPA
ISO 27001

What Does Data Compliance Mean at ContractsInfo?

Data compliance extends beyond regulatory obligations. It reflects the policies, operational controls and governance practices that guide how information is collected, managed, protected and delivered responsibly.

As a provider of government contract and procurement intelligence, ContractsInfo develops datasets from official public sector sources and government publications. Our operational practices are designed to support applicable privacy regulations and security standards, regardless of whether information is publicly available. Our objective is to help organisations use our data responsibly while supporting their own compliance efforts.

Compliance

Privacy & Data Protection Regulations

ContractsInfo designs its operational processes to support applicable privacy and data protection requirements across the jurisdictions in which we and our customers operate.

Europe & UK

GDPR

General Data Protection Regulation

UK GDPR & DPA 2018

UK GDPR & Data Protection Act 2018

United States

CCPA / CPRA

California Consumer Privacy Act / Privacy Rights Act

VCDPA

Virginia Consumer Data Protection Act

TDPSA

Texas Data Privacy and Security Act

Americas, Other

PIPEDA

Personal Information Protection & Electronic Documents Act — Canada

LGPD

Lei Geral de Proteção de Dados — Brazil

Asia-Pacific

DPDP Act

Digital Personal Data Protection Act — India

PIPL

Personal Information Protection Law — China

APPI

Act on the Protection of Personal Information — Japan

PDPA

Personal Data Protection Act — Singapore

Privacy Act & APPs

Privacy Act 1988 & Australian Privacy Principles — Australia

Africa & Middle East

POPIA

Protection of Personal Information Act — South Africa

UAE PDPL

UAE Personal Data Protection Law

Compliance Standards

Operational Standards That Support Responsible Data Management

Alongside privacy and data protection requirements, ContractsInfo follows recognised operational standards that help support secure information management and responsible business practices throughout the data lifecycle.

ISO 27001-Informed Security Practices

Information security processes are designed around ISO 27001-aligned principles for managing and protecting information assets.

Official Public Sources

Government contract and procurement information is developed from official public sector publications and government sources.

Responsible Data Governance

Documented operational procedures support accountability, consistency and responsible information management.

Secure Data Delivery

Operational safeguards support the secure delivery of datasets to enterprise customers.

Controlled Access

Access to operational systems is restricted to authorised personnel with defined responsibilities.

Regular Compliance Reviews

Operational policies and procedures are reviewed regularly to reflect evolving legal, regulatory and industry requirements.

Privacy Principles

Principles That Guide Our Data Practices

Responsible data management begins with consistent principles that guide every stage of our operational processes.

01

Lawful Processing

Information is handled in accordance with applicable privacy laws and internal governance requirements.

02

Purpose Limitation

Data is collected, managed and processed only for defined, legitimate business purposes in accordance with applicable legal and regulatory requirements.

03

Data Minimisation

We seek to limit the information we maintain to what is relevant and necessary for the intended business purpose.

04

Transparency

Our data sourcing and operational practices are designed to support transparency and accountability.

05

Accountability

Defined internal procedures support consistent governance and oversight across operational activities.

06

Ongoing Review

Privacy and compliance practices are reviewed as laws and expectations evolve across the markets we serve.

Continuously Strengthening Our Compliance Framework

Privacy regulations, information security expectations and data governance requirements continue to evolve around the world. ContractsInfo reviews its operational practices, policies and controls on an ongoing basis to support responsible information management and to adapt to changing legal and regulatory expectations across the markets we serve.